(jjO C^uujJuj'I (J^SjJLi ,jjJ LJ I (j£2-&j ijl o^J^i jM o » i i u j Lfcjjijl 3 C_aju jJLi jl I 0> j'^S^j'^jjJ I (O-ibl ( _>js <_aj^J I jjjlJIj 

«Jj I i 1 o 1 1 3 oJuLxJI 0>Lo.X-xJI (jjo JliJlrJI JJ3J' v joJI "JJ (;■'■■" 1 1 &9 I3-0JU dill j o^S j-uiJI j->^ I O^ 9 S-" 1 -^! J^L> 

3 OuujJLiyl v_^Lsu i_y5 cLaCUCAJLoJ I oLLi' L«£>9_«d> 3 dju jjd I O L JuuLoJU ^jOtDjdj JuJL9 . ^jJ^J I <i I g n,< 1 1 3 gj o TuJ 

•^ .' J I Oi Luil LojJ I dJLLi' 3J& l _y i Q I a I ij\S Lo (_> I il I Oju jju ^ I Oi LrJ i3to jj J l-3to-i QjloJLo 3 (^^ju^J&jjj Li LuuO 0> 1L> 

OJlSi qjd S LojujI ojUOli Jl>Li (Oux9 , (^jaSuu^j 6 iljl Oj-'iV ( ° 6 ° "" I i - 1 - 5 " viU-llj j . d-7j) i o o 1 1 v_^LijLSLo)H 3 ,ojl> 

ngnix,ojL> ,o.x?ujluj' ^>jI5>JI ojl& 1 _>j> jlijjJI ol oJ chh-^ vLoJ oIjVI aJcuujI^ oL£ jt *' J-ojv c^uxs^ ,ojI5>JI 
^9jJo l >o v , 5 i ^> i°jL*_II Ijla ol uJLt oijjj^ coj jjijwebmoney ^j^jIjjls))! ^juu^jJI JjJI dUlj ^s Loj 

uJ[ ajLtO^llj JLTLajlo O3J i>° Juu0L ! <-?>^ SJ^ <I L f* - ' gtj " r 01 ^. (OjLiJI ol 3 •**»*■! AjoJcuI ^LuiJ-C- (jjj \jm>9j ,jOJujJ 
Jl9 ajLajkol^j) tjl o^ &J-" 1 9 0-°l VHS |OjL> ,_jJ-£ JL^l^juuJ Juuuu <5j-9 ,oLLaJ li&jj^j oviJI Lilj_oJI 3 65.il I 

J3Z" 1 ° (J* 4 ' ■ i - 3 ^ 1 6' I ^ J-^>V. o^Ji-ll <^J-L> oLl^^I (jiQJtj ^j^S ,5.XxJu 
jLg-3«JI ,_jjp rtixoioll i;s.juajj| Lujj <3JJI JJ>>Li XiLuJ 

[root@ifadir/usr/local/nginx/conf]# uname -a 

FreeBSD ifadir.org 7.1-RELEASE FreeBSD 7.1-RELEASE #0: Thujan 1 14:37:25 UTC 2009 

root@logan.cse. buffalo. edu:/usr/obj/usr/src/sys/GEN ERIC i386 

jjo I3 ^ I iiu Lo 3 oJ LJ I jJbuxJ I oJ | a -?5-»-l I I>?>aJ I Juuuu <3 j-9 oajJ^j JLT ^o jj j V o 1 1 o> J5-J I o-° l° J ^^ I v r- L * j£>J ^l 
dJj (Ouu 3 o Ldju-LaJJ I f>^9> (jjo n 1 1 lo so ,ouJ o^jjJI i_^> I J I Jl^ )l I 0+*^ "-r-J-lo 3 jIjl£-)I| 6Jl9L ^jl9 pji aJlill 

[root@ifadir /usr/ports/www/nginx]#make config && make && make install 

i_ajl*ojuJI h 1 \ a C- j^jvS (.xSL^jJ dill j 3 J50 J9- ui O- L9xJojl djouuJ I (j>,iQi JLolP ( o > i I C- ^j^sl a-L?jjJI o Jl4> ^j^S 
ajlSLo-oJI c^LulSLoJI JLb cLdjuJ oJliLuJI jl JlP)I| ^oUjj .\ i n i V 3 .LxAjigJI ._! 6; ,05~aJ j-oy\ i/lxi ^j^S r.jU-> r.j !/-»-> 
,"8° J 1 g >,»,! 1 1 J^uL9 ajl«ooll 5 jJLLjo^-VJI I g o g a ■ V V _ S 0U I ojIjLxJI iJljl X*z9 <_o.JLo o\5 lgl>»n-> 5 jIjlP^I f Lij'l 

,_jj^l JLSuujJLi (jia.*JI Lgj^jjij qS- JLajaJI Jj<ajJawk o>bl JogiXiLuu dJUIjJ ajjlSLol JLTj^j 

[root@ifadir ~]# tar xvzf nginx-0.8.27.tar.gz 

[ifadir@ifadir ~/nginx-0.8.27]$ ./configure --help|grep with-|tee option_with 

[root@ifadir /usr/home/ifadir/nginx-0.8.27]# cat with_option 

[root@ifadir /usr/home/ifadir/nginx-0.8.27]# awk '{print $1}' with_option |tee 

with_option_awk 

[root@ifadir /usr/home/ifadir/nginx-0.8.27]# cat with_option_awk 

[root@ifadir /usr/home/ifadir/nginx-0.8.27]# vi with_option_awk 

jIjl^-^I ^oLijj s_i in i »»,i I o^ 7, j5-lcu*Jul JaJ ijylSLol j-95-»J aJl-xJI o Jl6> ^j^S 3 tS^JiJI ^Jii aJ^I VJ jj^<-a J oJtJuuul 

J ^9>=JI JLoJiijuou Lgjv>j ,ojli ^./configure dxLxP cUil Lg+JLt ^jjjlJI ^LdUl 
M-j (to join lines) 

./configure --with-rtsig_module --with-select_module -with-poll_module --with-file-aio 
~with-ipv6 -with-ht 

tp_ssl_module ~with-http_realip_module --with-http_addition_module --with- 
http_xslt_module -wit 

h-http_image_filter_module --with-http_geoip_module -with-http_sub_module --with- 
http_dav_module 

--with-http_flv_module ~with-http_gzip_static_module --with-http_random_index_module 
-with-htt 

p_secure_link_module --with-http_degradation_module --with-http_stub_status_module - 
with-http_pe 

rl_module --with-perl_modules_path=PATH --with-perl = PATH -with-mail --with- 
mail_ssl_module -wit 

h-google_perftools_module --with-cpp_test_module --with-cc=PATH -with-cpp=PATH 
-with-cc-opt=OPT 



IONS --with-ld-opt=OPTIONS --with-cpu-opt=CPU --with-pcre --with-pcre=DIR -with-pcre- 
opt=OPTIONS 

--with-md5=DIR --with-md5-opt=OPTIONS --with-md5-asm -with-shal = DIR -with-shal- 
opt=OPTIONS --w 

ith-shal-asm -with-zlib=DIR --with-zlib-opt=OPTIONS --with-zlib-asm=CPU -with- 
openssl=DIR --wit 
h-openssl-opt=OPTIONS -with-debug 

l _j3 ajjujUo-JI J^jjjJI l _ ! JS- Jo-g-igJI 3^juoJI j lo »,»,» 1 1 J$J >_jlft>jl9 jjJoxJJ X^\$ j in uJ ,_^S jJcuuU^I o.Xft> Jj 

s jJ LaJ I J-OjJI J-gJcijJ (OiSLl^JUjL? 

,_^5 iOui^ Ijls ^SLolLoJ ,_^3 o>LjiSLoJI olfc Jl^I JJ5J' (OJlrJ £?Ij liJLIIj 3 £.b<JJ oJlnJbdl jl.x£-)H i+LxP ,ouij' V Jl9 

o-IjIjl^)II ojl^. s j^lS'Ljl5 Ul LI with_option_awk jIjlp))! ^JLo l >o L^ij^v ^ UIj^| ^ ,_*!£■ 
[root@ifadir /usr/home/ifadir/nginx-0.8.27]# source option_with_awk 

OjjujLjj JLuuuJI i_s3 OJulOjuu 3 ^JUIj 3 o^^J '-» I O iS3Jl»-0 .\ I Oil"; ^fll'SPUTCe fl-QjJ Mj 

[root@ifadir/usr/home/ifadir/nginx-0.8.27]# ./configure ~with-http_ssl_module -with- 
mail_ssl_module -with-mail && make && make install 

Xso qS- ,ojbJJ (jilogiXioll 3 cLLa>il| plain 3 nginX ,o.)l> o>bljLp| oJ-C- s S5Jl3«jJI jJboJI 3J& I Jl4>3 

[root@ifadir /usr/local/nginx]# Is 

client_body_temp fastcgi_temp logs sbin 

conf html proxy_temp 

JlRj Lo ,_^S (J^jIjjJ LolT Ijl7 J g nl aj\ ilj rtuJLc- ^Jlxj Lo ,aPj_9ngniX ,ojl> jIjlPJ <_oJLoJ Joji- I Jl6> Qjlo-y^J LexS^ 

[root@ifadir /usr/local/nginx/conf]# vi nginx.conf 



#user nobody; 


#access_log logs/access. log main; 


worker_processes 1; 






sendfile on; 


#error_log logs/error.log; 


#tcp_nopush on; 


#error_log logs/error.log notice; 




#error_log logs/error.log info; 


#keepalive_timeout 0; 




keepalive_timeout 65; 


#pid logs/nginx.pid; 






#gzip on; 


events { 


server { 


worker connections 1024; 


listen 80; 


} 


server_name localhost; 




#charset koi8-r; 


http{ 




include mime. types; 


#access_log logs/host. access. log 


default_type application/octet-stream; 


main; 


#log_format main '$remote_addr - 


location / { 


$remote_user [$time_local] "$request" ' 


root html; 


# '$status $body_bytes_sent 


index index.html index.htm; 


"$http_referer" ' 


} 


# '"$http_user_agent" 




"$http_x_forwarded_for"'; 


#error page 404 /404.html; 



# redirect server error pages to the 
static page /50x.html 


name-, and port-based configuration 


# 


# 

error page 500 502 503 504 / 


#server { 


# listen 8000; 


50x.html; 


# listen somename:8080; 


location = /50x.html { 


# server_name somename alias 


root html; 
} 


another.alias; 


# location / { 


# proxy the PHP scripts to Apache 


# root html; 


listening on 127.0.0.1:80 


# index index.html index.htm; 


# 


# } 


#location ~ \.php$ { 


#} 


# proxy pass http://127. 0.0.1; 




#} 






# HTTPS server 


# pass the PHP scripts to FastCGI 


# 


server listening on 127.0.0.1:9000 


#server { 


# 


# listen 443; 


#location ~ \.php$ { 


# server_name localhost; 


# root html; 




# fastcgi_pass 127.0.0.1:9000; 


# ssl on; 


# fastcgijndex index. php; 


# ssl_certificate cert. pern; 


# fastcgi param 


# ssl_certificate_key cert, key; 


SCRIPT_FILENAME 




/scripts$fastcgi_script_name; 


# ssl_session_timeout 5m; 


# include fastcgi params; 




#} 


# ssl protocols SSLv2 SSLv3 TLSvl; 




# ssl ciphers ALLIADH:! 


# deny access to .htaccess files, if 


EXPORT56:RC4+RSA: + HIGH: + MEDIUM: 


Apache's document root 


+ LOW:+SSLv2: + EXP; 


# concurs with nginx's one 

# 

#location ~ A.ht { 


# ssl_prefer_server_ciphers on; 


# location / { 


# deny all; 


# root html; 


#} 


# index index.html index.htm; 


} 


# } 




#} 


# another virtual host using mix of IP-, 


} 



JLuoLaJI o^s J5>xll o^j SjjLfrls o>bljLi-| Jlo»ii,uL jjJb ^ngnix ,ojl> &jjjo J^bojuu J^jH i_*s 
JJ3JU ji l _>j3 Lolifadir.org o>£+ jui j <_*jJL> o>-9 *J jjixJI ,_>jloo,.xJI oJ-t £loJuuu| aJL? ,_y3 o>Suuuj ^>jbJI ol 

,ojl> o^J-t jj^ju Juuuu lS>9 ol <_jJ-£ AajI ijl 1-^3-^. ' *i*4* lOCalhOSt ,ol jJujujJ gjJaJuuuu9 eIouuujM ,ojL> tjvlp 



ovi j^^j ajI ^Ibind/dns slouuuiH ,ojl> J^ l>uJ JulJI Ijj& ol 1 >o ,a£>i3 ajuucujJ o^b )) 3 aj-jlC-Is ^ 

jIjlP)I| olaJLo ,_jJljJI jJboJI ^5 Juuuu <3jS 

[root@ifadir /etc/namedb]# Is 

dynamic master named. conf named. root rndc.key slave 



listen 80; 
serverjiame ifadir.org; 



OlioJI lj-ft> (3 1 ,ojbdJ jJjJI i_jlLo J>b Jo^o^ohtml u o i,».i o 1 1 i_nJLoJI ^1 / o^-R-o 3 LfejJ-*-"^"-! jOjbdl f><) o ; »,».» 

[root@ifadir /usr/local/nginx]# 
location / { 



root html; 

index index.html index.htm; 

} 

y 3 \ [jajj.x^uj. (OjbJI f^JLujj oJI ijji'jjJI ^LxA^cJI ^lindex.html index.htm 

jjjlijj ijobJI dlL' Jlpginjl | 0l5ulLp £jJlSI (OjL^JI AjjJfcjJ c^»ljtfl»o (.jJ-t fiSj3^i ,oJlP aJL? 1 ^j^S 3 
,0 j Liu I j x^ 5J0 IgJojuuu (Qj) Q i n,i c^jl? ajuj^j ^)S £0 6 j-9 j i o 1 1 3 Xuuu <3 j-Dj <i-*3 Uu I o> Log I g o I 1 3 

[root@ifadir/usr/local/nginx/html]# rm -rf * 
[root@ifadir/usr/share/doc/en/books/handbook]# pax -rw */usr/local/nginx/html 



OjjJI i_^9 (jjuoLJt i » »,i a 1 1 l _ >J j (jSJ 3 ojjujLjj (Ojbdl (jjxJoL f> t) a 1 l ^juuijU3^l jjlP ,juongniX a o 1 1 gi A 1 a i 1 aJL? ^j3 
O3J i>° JU*- 1 *^ I ojlpp 6 j3 <) i o 1 1 <olylSLo)H oJ-t i_9j-RJU -h l ^ l uuijU3^l £0 (OjliJI (jjxJoli (Qj) iLi ^1 <_jJ.9^I 

,o3bJI <jLnjj 

[root@ifadir/usr/local/nginx/sbin]# ./nginx -h 
[root@ifadir /usr/local/nginx/sbin]# ./nginx 
[root@ifadir/usr/local/nginx/sbin]# nc -z localhost 80 
Connection to localhost 80 port [tcp/http] succeeded! 

c c 

o»L^Q«oll jjJljojJ ojLLLxJI i_y.ii«J JlRjuuulo (OjLiJI tj\ ^jjS- JLJj \XSb 3 ^J) i a a i-aj^JL (joliJI c^^jJI (j\ la&xj 
a ■ g 7 1 3 ajjg»uu 3 Juuuu lSj-Dj (joliJI ,3Juuuuul JL>lj j-9j V o IIQpera £UL*aJ_o JLoJtiuuul oOuL? o^S 

(OjbJI ,ouuj| (j^^bouuiij li-u^ a^juuJI 0J& oJLgjngnix ^>jl> JLrjaju jl»j l _>^- ^>jl> oJ-c- nmap 



C-U-o utiuuul Ijl 

cLLo.gJi AAA O J I CX^JUULU I ^ 



SS/tcp open http nginx web server 6.8.27 

|_ html -title: FreeBSD Handbook 
443/tcp open ssl/ssl OpenSSL (SSLv3) 

|_ sslv2: server still supports SSI_v2 
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3-ft> 3 -i+JI <-0-U> LgJ^I 3 <uIrjuuoI clii'l (OjliJ L iLkobdl o» Loj I g o 1 1 J^ ^jdS- ,530^0 3 ^^aaSjJ 3I jJljjaJI jJbu> 

(oLkuJI 0I5JU iijuaJL (\.oUjjJU JuUiuoJI JJlxJI 

[root@ifadir /usr/local/nginx/logs]# Is 

access.log error.log nginx.pid 

[root@ifadir/usr/local/nginx/logs]# cat nginx.pid 

55339 

[root@ifadir ~]# ps aux|grep nginx 

root 55339 0,0 0,0 5136 ?? IWs - 0:00,00 nginx: master process ./nginx 

dL^Qvoll ^ J Qgin.1 o II ^QaOioll £_jj ^ J^>jJI Ol9 3 (_AJ I J5.SJ I ^jjLt ^^JlSO 3 f> J LsuJ JiloHnU Q II t_n I o 

iS j-> I o> Lo^JLsjj 3 6 j .1 «o o 1 1 

127.0.0.1 - - [22/Mar/2010:23:23:46 +0000] "GET/ HTTP/1.1" 304 "-" "Opera/9.63 

(Xll; FreeBSD 7 

.1-RELEASE i386; U; en) Presto/2.1.1" 

127.0.0.1 - - [22/Mar/2010:23:26:ll +0000] "GET /introduction. html HTTP/1.1" 200 3867 

"http://ifa 

dir.org/" "Opera/9.63 (Xll; FreeBSD 7. 1-RELEASE i386; U; en) Presto/2.1.1" 

start, reload, stop ,ojbJJ aJLj^JI o.ljLiu>ll 3 slLo>!>l| oip Jju <xajuj| ^ ss^^^v. a sLL>\H >_nlo 

error.log 

[root@ifadir /usr/local/nginx/sbin]# ./nginx -s reload 

2010/03/22 23:23:34 [notice] 39854#0: signal process started 

JloJlHj 3 <i a ri"Xjo o>lylSLoL< o»Ly«Q »oll (juo JuJlsJI jj_)u«ai ojylSLol o^9 ,o.SL^.jJI q.^ J^JjuouJI jjSJl g-LaiLo I-X-&3 

C^L^fl«oll f LojujI f_yJ.su JxxJumJ (OJuuuJ ajl ^1 8000 3J& j-LojuU J3L9 (3 jJeJ I 1 _>J3 JuJjJI JJJio II jjJljOjJI 
JuJl^JI jJl^JLi^ i o-uj)'I dLllju ljoLjJI jJl^JI jjulRj ,ouuuuU ^QkQioII ^5 0> J34J I isl^jj aj L? o^S djl ilj ajLiluJI 

| OJu ^\ Q 1/V1 Q 1 1 ,_yj) ^JUJUJ 1 JO I I CJJ^jJ I ^ ( Q H.l V I gjo ^ iJ L> i_jJl9 CJ^J^J ^ ( Q M.I I Q.J3 JcuJL? 5~g-9 (_J»J LiJ I JJCLUii I Lo I 

Jl>j)l ovibil ^Q «oioll ,_j>A9 laJL9 l ouuu)'l 3J& jLjuJI ol < ^->+ ? <^-JIjJI jJclujJI ,AjjujIjLoJI o»L*q «oll f LtAJuujJ 
Ijlg IqjLuj rtlogix.i oil sLouuU^I X^y IgjLuijLo OS^u. * O' rtJeu^jii aogo II jbo)l o^Li JcloS p.x>j))\3 c^j^jJI 

j^5"juoJI JKjuoJL jIjlP)IIj ps (JS'Im.ioII LjIqj 3.a_uj_c- dlLa> JLd^o' ol g^^is (i^iJI Ijl^j ouxs 

[root@ifadir /usr/local/nginx]# mkdir bsdnewsletter 
#server { 

#listen 8000; 

#listen somename:8080; 

serverjiame bsdnewsletter.ifadir.org; 

location / { 

root bsdnewsletter; 

index index.html index.htm; 
} 
} 



XSUmXj $Xi.Xxi\ O-umJ^-gJ I jloJLC-j (Ouu o^J 0>bljLp)l| JL-oJXj 6jU-)I dill j 3 ,ojbJI JLloJXj ojU-Li O^l (°j) ° ■ ■" 
fjjjSuJ^j ojLgjuJ 0$^ <~s Jb 9 ^^J^"^' O- '^•'L^Q «oll oJl& J I o "aJu oux9 JJL9 i^»L^q »oll jjjLjdjJnginX (OjbJI 
fjjxjj (jjaJ o 1 ^^ 3 6 J I g »'».! 1 1 o jLgJ fi JlDjJ ( o ig o ^Jd l _)ja JLSJ ajd I lo o 1 1 3 oa^uJU ajuLC- 6 J Lo jjS^jj f>$£i i^-ijl? Juuou 
lO 1 1 q 1 1 ^ JLxrJ I 3 1 c^uuJ I i_}3 i_pjad*Mdl I aj) J l> j\xi-\ 0^5 o .\ 1 a 1 Jl9 o> Lo^JLsJ I qjd Jj Lfc ,0^ Lgjj Jl^o Jl9 dU I JlS^ 
3JXJ Ijg •»■"■' olriginX ^JjbJI jIjl^-J qjs sLjju)'! JlRj ( o ST j I C- ^jJL9l ULs . (^-lS^JI ,j>,lQi l _ s ^S 6.\iQ o 3 ojiJLouo cLuillj 

fjjjS^ij^j l _>j3 a q 1 >:» ,1 o 1 1 Asujy*\ aoloi^l ^jls- tjjjtJI ju^l9xuju 6jLg-uJ ^-ojjujJI 5.55.^1 1 3 bsdnewsletter 

o^ouuo jJ I 5J3-0J I 5A I Jl& 6 J LgjuoJ I o Jl6> JLuJ LgjLo (j^oji I <--Pv. oOJ I <-_9 1 jLibi' I JLuiXi 3 oJ^j-! 

www.bsdcertification.org 



[root@ifadir/usr/local/nginx/sbin]# ./nginx -s reload 




BSD Newsletter.com 



Advertisement: The OpenBSD PF Packet Filter Book: PF for NetBSD, FreeBSD, DragonFly and OpenBSD 
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This is the BSDA Study Guide Book written via a wiki collaboration. 
Chapter Introduction 



Chapter Installing and Upgrading the OS and Software 

• Recognize the installation program used by each operating system 

• Recognize which commands are available for upgrading the operating 
system 

• Understand the difference between a pre-compiled binary and 
compiling from source 

• Understand when it is preferable to install a pre-compiled binary and 
how to do so 

• Recognize the available methods for compiling a customized binary 

• Determine what software is installed on a system 

• Determine which software requires upgrading 

• Upgrade installed software 

• Determine which software have outstanding security advisories 

• Follow the instructions in a security advisory to apply a security patch 

Chapter Securing the Operating System 

Determine the system's security level 
Recognize basic recommended access methods 
Configure an SSH server according to a set of requirements 
Configure an SSH server to use a key pair for authentication 
Preserve existing SSH host keys during a system upgrade 
Recognize alternate authentication mechanisms 
Recognize alternate authorization schemes 
Recognize BSD firewalls and rulesets 

the BSD utilities that shape traffic or control bandwidth 



Recognize t 



Recognize BSD mechanisms for encrypting devices 
Recognize methods for verifying the validity' of binaries 
Recognize the BSD methods for restraining a service 
MoriifV the Rvstem banner 



(jjo oJLc- <33_jljuULo jjlS^JU SSl *~j 6 j Q uJ o c^L^o^o jjX*&j oJ-f- OjXqJI ngiflX VSbjS^j ovJiJI c^Ljl5Lo)H Jl^I qjq 
djy3jJiSJ)'l dJ^JuJI 3 cljJuuu)'! $J}\$-a 3 JLuoj)H iLoXjS (j\ua))\ ^LiL^O" ^_jvjJ I C-»lo.X>JLI djjuouJL oL°^H 

webmoney,e-gold, pay-pal,... 

[root@ifadir/usr/local/nginx/conf]# openssl dsaparam -rand -genkey -out rnd.key 1024 
[root@ifadir/usr/local/nginx/conf]# openssl gendsa -aes256 rnd.key -out cert. key 
Generating DSA key, 1024 bits 
Enter PEM pass phrase: 
Verifying - Enter PEM pass phrase: 

[root@ifadir /usr/local/nginx/conf]# openssl req -new -x509 -days 100 -key cert. key -out 
cert. pern 

Enter pass phrase for cert. key: 
HTTPS server 



QjJLoJfcJuuULo II 3_30 LgJLuUjI 3 \jbj i Q ul i jlj-oJI C^bt-Qj^JI oJ-C- ^^LXjjjJ lSJJI <~G.JLo JjJL> O-o X» )) <L*>juuU J^ JLiJJ 



htmal v a-131'^oll ^3_j U3J I q_o jljjjJI oJLc- juuou ls>9 (oLLu CI3JL2J IjJcu^nginx (_-» <j^bJI j-x^JI <~q.JLo 

(^jolqj Kr j<9 3 a I q uJ I <xi j LuoloJ I ijlol I o^5 1 3 in Q ~Xj Juuuo lS j-9 U I ^-fP' J Li-oJ I I Xlb ^^ lft> X^ I JLrJuuuu y I j LoJ_9 

openslp ^ ^jLiJI ^sujju ols^JI 
[root@ifadir /usr/local/nginx]# mkdir ssl 

[root@ifadir /usr/local/share/doc/openslp/html/UsersGuide]# pax -rw */ 
usr/local/nginx/ssl 



server { 

listen 443; 
serverjiame ssl.ifadir.org; 



} 



ssl on; 

ssl_certificate cert. pern; 
ssl_certificate_key cert. key; 

ssl_session_timeout 5m; 

ssl_protocols SSLv2 SSLv3 TLSvl; 

ssl_ciphers ALL:!ADH:!EXPORT56:RC4 + RSA: + HIGH: + MEDIUM: + LOW:+SSLv2: + EXP; 

ssl_prefer_server_ciphers on; 

location / { 

root ssl; 

index index.html index.htm; 
} 



Jjjuui sSjjuoJI >»>ll JI>jI vp\^. °>° J^ sj^s ^>jbJI (3^-lo| 6jLp| ^-po.nginx/ssl jlxt| 0-° ■xS'LJI jjij 

[root@ifadir /usr/local/nginx/sbin]# ./nginx -s reload 
Enter PEM pass phrase: 



OpenSLP Users Guide - Opera 



File Edit View Bookmarks Widgets Tools Help 
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Users Guide 



Introduction 

Who should read this guide? 

Installation 

Installing OpenSLP on Limix 
What did yon do to my machine? 

Configuration 

Command line options 

Modifying the slp.conf configuration file 

Creating a static registration file 

Advanced Topics 

When to run slpd 

Timing and optimizing OpenSLP 

Security 

Frequently Asked Questions 



jj?l (OjL? 3-so IgJLujjJ gjJgujugj aj\ ^Jphp o-Lxij^j g_o JLoLsiill ojjuLiLo gjJgujuuu )) nginx &)) IjJoJ 



,ojl> i _ s ]S- &j£jJu> ill oJ-t >9>" JIj-oJI IjJfc ,_^S cLxij^JI o.Xfc> of IjJ 3 dli oJ-C- OjjjJI oJ 

J3^l| JLiLoJI ,_*A5php cj\s*su£> &, JLoLriII q-o jjs>))\ life o^Loj jIjlC-] g;o apache p^s nginx 
JuuUL ! s?>^ ,oUcLi (_53-9 colx&J ojLfljL^ J3J? ^jjuL) dJ Liiiyate s j^j'L^JI ,ojbJI jIjl&J J3J? AiiiS" ^jJI 

(j^LxJI iOj^jJI jjulRj i_-C*jl9 eu^l (Jjoloj (3>9 La£> CH- ^'-*-^ 1 Loj 3 gJa Poll Ijjfc jIjlC-I ,_jJ} cxLtJuuuu Jl9 

apache ,ojL? g^ jojlstii. )) oiJ nginx ,ojbJ ^loJuuu^li 
[ root@ifadir /usr/home/ifadir/tools]# tar xvzf drupal-5. 19.tar.gz -C /usr/ 
local/nginx/drupal 
server { 

listen 8080; 

server_name ifadir.org; 

#charset koi8-r; 

#access_log logs/host .access.log main; 

location / { 

root drupal; 

index index. php; 
} 

apache ,ojbJ ojjujLo \&jjjjojj nginx ,ojl> p^su ^ ■ < g o 1 1 c^Lao •? <_j juo^l (JjJLrj Ij| L> aJL? s j^s 

# proxy the PHP scripts to Apache listening on 127.0.0.1:80 
# 
location ~ \ .php$ { 

proxy_pass http://127.0.0. 1; 

root drupal; 
} 
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User login 



Password: 




J-og ■ 



o Create new account 
Request new password 



Welcome to your new Drupal website! 

Please follow these steps to set up and start using your website: 

1. Create your administrator account 

To begin, create the first account This account will have full administration rights and will allow you to 
configure your website. 

2. Configure your website 

Once logged in., visit the administration section, where you can customize and configure all aspects of your 
website. 

3. Enable additional functionality 

Next visit the module list and enable features which suit your specific needs. You can find additional modules 
in the Drupal modules download section. 

4. Customize your website design 

To change the "look and feel" of your website, visit the themes section. You may choose from one of the 
included themes or download additional themes from the Drupal themes download section. 



5. Start posting content 



bl.x£)J duJUl o.l^JciiJI gjjl dJUIju i°UiU.9 LyLnJb ,ojbJI (3^Uo| ,oJ0. y aJjlp| 3 JLjuJaiJI ^jlij.l JS uu 

rc. local pUtu 
[ root@ifadir /usr/local/etc/rc.d]# touch nginx 
[ root@ifadir /usr/local/etc/rc.d]#man rc. local 
[ root@ifadir /usr/local/etc/rc.d]# vi nginx 
#!/bin/sh 

. /etc/rc.subr 

name="nginx" 

rcvar=^set_rcvar x 

command="/usr/local/nginx/sbin/nginx" 

extra_commands="nop hello" 

hello_cmd="echo Hello nginx Users." 

nop_cmd="do_nop" 

do_nop( ) 

{ " 

echo "I do nothing." 

} 

load_rc_config $name 
run_rc_command "$1" 

[ root@ifadir /etc]# vi rc.conf 

enable_nginx="YES" 

root@ifadir /usr/local/etc/rc.d]# chmod u+x nginx 

[ root@ifadir /usr/local/etc/rc.d]# /usr/local/etc/rc .d/nginx start 



